Rewterz Threat Alert – AZORult Malware – IOCs - Rewterz
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Credentials - T1589.001 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Server - T1583.004 Server - T1584.004 |
Common Information
Type | Value |
---|---|
UUID | cbd47963-b3c3-4cb0-a5f2-cb433a4e8012 |
Fingerprint | 85d4a4716e9f871f |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 30, 2020, 12:55 p.m. |
Added to db | Dec. 19, 2024, 7:54 a.m. |
Last updated | Dec. 19, 2024, 8:04 p.m. |
Headline | Rewterz Threat Alert – AZORult Malware – IOCs |
Title | Rewterz Threat Alert – AZORult Malware – IOCs - Rewterz |
Detected Hints/Tags/Attributes | 19/2/17 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 2 | cve-2020-4607 |
|
Details | Domain | 1 | fateweaver.tech |
|
Details | Domain | 1 | cnmotoparts.online |
|
Details | Domain | 1 | ferreiranadii.ac.ug |
|
Details | Domain | 7 | libs.zip |
|
Details | sha1 | 1 | 0b0271f8df22791a678a6d362d4d71141bf5bb13 |
|
Details | sha1 | 1 | 2c8aec8cc09e5c7c982c4481b62904aef8244741 |
|
Details | Url | 1 | https://fateweaver.tech/angel/pl341/index.php |
|
Details | Url | 1 | http://cnmotoparts.online |
|
Details | Url | 1 | http://cnmotoparts.online/gate/sqlite3.dll |
|
Details | Url | 1 | http://ferreiranadii.ac.ug/ds1.exe |
|
Details | Url | 1 | http://ferreiranadii.ac.ug/rc.exe |
|
Details | Url | 1 | http://ferreiranadii.ac.ug/ac.exe |
|
Details | Url | 1 | http://cnmotoparts.online/file_handler4/file.php?hash=0b0271f8df22791a678a6d362d4d71141bf5bb13&js=2c8aec8cc09e5c7c982c4481b62904aef8244741&callback=http://cnmotoparts.online/gate |
|
Details | Url | 1 | http://ferreiranadii.ac.ug/ds2.exe |
|
Details | Url | 1 | http://cnmotoparts.online/gate/libs.zip |
|
Details | Url | 1 | http://cnmotoparts.online/gate/log.php |